Skip to content

Commit 33c3566

Browse files
authored
Add git-secrets-scan workflow (#74)
Add `git-secrets-scan` workflow Signed-off-by: currantw <[email protected]>
1 parent 872f8a2 commit 33c3566

File tree

1 file changed

+33
-0
lines changed

1 file changed

+33
-0
lines changed
Lines changed: 33 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,33 @@
1+
name: Git Secrets Scan
2+
3+
permissions:
4+
contents: read
5+
6+
on:
7+
pull_request:
8+
workflow_dispatch:
9+
10+
concurrency:
11+
group: git-secrets-scan-${{ github.head_ref || github.ref }}
12+
cancel-in-progress: true
13+
14+
jobs:
15+
scan:
16+
runs-on: ubuntu-latest
17+
timeout-minutes: 10
18+
19+
steps:
20+
- name: Checkout code
21+
uses: actions/checkout@v5
22+
23+
- name: Install git-secrets
24+
run: |
25+
git clone --depth 1 --branch 1.3.0 https://github.com/awslabs/git-secrets.git
26+
cd git-secrets
27+
sudo make install
28+
29+
- name: Configure git-secrets
30+
run: git secrets --register-aws
31+
32+
- name: Run git-secrets
33+
run: git secrets --scan

0 commit comments

Comments
 (0)